Trojan

Trojan.Generic.31208480 (file analysis)

Malware Removal

The Trojan.Generic.31208480 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.31208480 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs

How to determine Trojan.Generic.31208480?


File Info:

crc32: F3861B6A
md5: bf243125f4361bc4859f24cad233d69a
name: BF243125F4361BC4859F24CAD233D69A.mlw
sha1: 23837925df159ae9ffdf69654d463395eeac0066
sha256: dfba991b69826f10366bcbc28abc35b2e97b9c6447ce878c5413a2366968485a
sha512: f20946303b8d69cbb143080c6c7a287b140c2d3a60d34f754bd3f27aca33cfda4c0341870b72f215151460c93df0b0a7557f64678568e645ed24e5760582eae0
ssdeep: 24576:x4o4HtTqLagbpZlmc0TAWhqz0y2PRgD4Joo1vZrMQsvfAT2vI3dD:Ko4xqLFwTAWhqz2ZgD2oqRrMRXk8IZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2019 x4e0ax6d77x5c55x76dfx7f51x7edcx79d1x6280x6709x9650x516cx53f8 All Rights Reserved
InternalName: skinbox.exe
FileVersion: 3.3.0.2
CompanyName: x4e0ax6d77x5c55x76dfx7f51x7edcx79d1x6280x6709x9650x516cx53f8
ProductName: skinbox.exe
ProductVersion: 3.3.0.2
FileDescription: skinbox.exe
OriginalFilename: skinbox.exe
Translation: 0x0804 0x04b0

Trojan.Generic.31208480 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusAdware ( 00565ab71 )
LionicAdware.Win32.KuziTui.2!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Generic.31208480
CylanceUnsafe
ZillyaAdware.KuziTui.Win32.1650
SangforTrojan.Win32.Save.a
AlibabaAdWare:Win32/KuaiZip.b097fe1f
K7GWAdware ( 00565ab71 )
Cybereasonmalicious.5df159
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/KuaiZip.AB potentially unwanted
APEXMalicious
AvastWin32:Sality [Inf]
Kasperskynot-a-virus:HEUR:AdWare.Win32.KuziTui.gen
BitDefenderTrojan.Generic.31208480
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
ViRobotAdware.Kuaizip.1826184
MicroWorld-eScanTrojan.Generic.31208480
TencentPua:Adware.Win32.Kuzitui.16000040
Ad-AwareTrojan.Generic.31208480
SophosGeneric PUA CD (PUA)
BitDefenderThetaGen:NN.ZexaF.34294.VD2@amv@znkj
VIPREVirus.Win32.Sality.atbh (v)
TrendMicroPE_SALITY.ER
McAfee-GW-EditionBehavesLike.Win32.Dropper.th
FireEyeGeneric.mg.bf243125f4361bc4
EmsisoftTrojan.Generic.31208480 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.KuziTui.aad
AviraTR/Patched.Ren.Gen
eGambitUnsafe.AI_Score_92%
Antiy-AVLTrojan/Generic.ASMalwS.34BFC5C
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataTrojan.Generic.31208480
Acronissuspicious
McAfeeKuaiZip
MAXmalware (ai score=81)
VBA32BScope.Adware.Burden
MalwarebytesPUP.Optional.Kuaizip
TrendMicro-HouseCallPE_SALITY.ER
RisingAdware.Agent!1.C6CF (CLASSIC)
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/KuaiZip.AB
AVGWin32:Sality [Inf]
Paloaltogeneric.ml

How to remove Trojan.Generic.31208480?

Trojan.Generic.31208480 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment